Legal claims defining the scope of protection, as filed with the USPTO.
1. A method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource provided through a private network that is accessible from said first network, said method comprising: providing a wireless connection to said first network for said wireless device after authenticating said wireless device to said first network; providing a graphical user interface (GUI) generated on a display of said wireless device, said GUI providing in one screen a first icon relating to a resource and a second icon relating to an authentication status of said wireless device; upon activation of said first icon, generating a request for said resource; and evaluating whether said resource is related to said restricted resource in said private network and if so intercepting said request and redirecting said request to an authentication server; at said authentication server, if said wireless device has not been authenticated to access said restricted resource, then initiating an authentication process to request a user account and a password from said wireless device, said authentication process utilizing a two-factor authentication technique to authenticate said wireless device; processing an input stream provided from said wireless device in response to said authentication process, said input stream comprising account data and a password; comparing said input stream against valid account data associated with said restricted resource; and if said input stream matches said valid account data, authenticating access for said wireless device to said restricted resource and automatically directing said wireless device to said restricted resource in said private network; and if said wireless device previously had been authenticated to access said restricted resource, automatically providing said wireless device with access to said restricted resource; and if said request relates to a non-restricted resource accessible from said first network, then automatically providing said wireless device with access to said non-restricted resource, wherein said restricted resource relates to an HTML page and is provided through an internet point-to-point protocol layer; said restricted resource is provided in said internet point-to-point protocol layer by said private network; and said authentication server provides a message to said wireless device used to update said one screen to indicate through said second icon whether said wireless device has been authenticated to access said restricted resource.
2. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 1 , wherein: said wireless device has an access account to said first network; and said non-restricted resource relates to a resource accessible from said first network.
3. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 1 , wherein said two-factor authentication technique utilizes a validation code provided to said wireless device from a user of said wireless device.
4. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 3 , wherein said validation code is provided as part of said password.
5. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 4 , further comprising requesting said validation code from said user through said wireless device relating to said two-factor authentication technique when said input stream is not authenticated after a set number of authentication attempts.
6. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 5 , wherein said validation code periodically changes in a pattern known by said first network; and changes in said validation code are provided to said user.
7. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 1 , wherein access to said restricted resource is time limited.
8. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 1 , wherein status information for said authentication attempt is provided to said wireless device to allow said wireless device to generate status information on said display.
9. A system for controlling access of a wireless device to a restricted resource, said system comprising: a first network providing a wireless communication link with said wireless device to a plurality of services; a private network in communication with said first network, said private network providing wireless access to said restricted resource to said wireless device after said wireless device has been authenticated on said first network; a redirection process providing coded instructions to operate on a microprocessor in said first network, said redirection process adapted to evaluate an access request initiated by said wireless device, such that if said access request relates to said restricted resource and said wireless device has not yet been authenticated to access said restricted resource, said redirection process is adapted to redirect said access request to an authentication server, if said wireless device previously had been authenticated to access said restricted resource, said redirection process automatically provides said wireless device with access to said restricted resource, and if said access request does not relate to said restricted resource, said redirection process automatically provides said wireless device with access to said non-restricted resource; and said authentication server being in communication with said private network and said first network to control access to said private network by said wireless device through said first network and upon receipt of said access request; automatically initiating an authentication process providing instructions that operate on a microprocessor in said wireless device to provide said wireless device access to said restricted resource, said authentication process including a request for a user account and a password through said wireless device, said authentication process utilizing a two-factor authentication technique to authenticate said wireless device; processing an input stream from said wireless device in response to said request, said input stream comprising account data and said password; comparing said input stream against valid account data associated with said restricted resource; and if said input stream matches said valid account data, automatically directing said wireless device to said restricted resource in said private network, wherein said restricted resource relates to an HTML page and is provided through an internet point-to-point protocol layer; said restricted resource is provided in said internet point-to-point protocol layer by said private network; and a graphical user interface (GUI) is generated on a display of said wireless device, said GUI including on one screen a first icon relating to said restricted resource and a second icon relating to said authentication server, said second icon indicating whether said wireless device has been authenticated to access said restricted resource.
10. The system for controlling access of a wireless device to a restricted resource as claimed in claim 9 , wherein said non-restricted resource relates to a resource accessible from said first network.
11. The system for controlling access of a wireless device to a restricted resource as claimed in claim 9 , wherein said two-factor authentication technique utilizes a validation code provided from a user of said wireless device.
12. The system for controlling access of a wireless device to a restricted resource as claimed in claim 11 , wherein a validation code is provided as part of said password.
13. The system for controlling access of a wireless device to a restricted resource as claimed in claim 12 , wherein said authentication process further comprises requesting a validation code from said wireless device relating to said two-factor authentication technique when said wireless device has not been authenticated after a set number of authentication attempts.
14. The system for controlling access of a wireless device to a restricted resource as claimed in claim 13 , wherein said authentication server periodically changes said validation code in a pattern known and provides said changes in said validation code to said wireless device.
15. The system for controlling access of a wireless device to a restricted resource as claimed in claim 9 , wherein access to said restricted resource is time limited.
16. The system for controlling access of a wireless device to a restricted resource as claimed in claim 9 , wherein status information for an authentication attempt is provided to said wireless device to allow said wireless device to provide status information to said user.
17. The system for controlling access of a wireless device to a restricted resource as claimed in claim 9 , wherein said private network includes a mobile data services server.
18. The method for a wireless device that is authenticated to communicate with a first network to control access by said wireless device to a restricted resource as claimed in claim 1 , wherein said one screen is a main application screen for said device.
Unknown
July 5, 2011
Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.